Only allow a temporary rsa key exchange when they key is larger than 512.
[openssl.git] / ssl / s3_clnt.c
2015-06-10 Kurt RoeckxOnly allow a temporary rsa key exchange when they key...
2015-06-10 Kurt RoeckxProperly check certificate in case of export ciphers.
2015-06-04 Matt CaswellRemove misleading comment
2015-06-02 Matt CaswellFix race condition in NewSessionTicket
2015-05-20 Kurt RoeckxCorrectly check for export size limit
2015-05-20 Emilia Kasperclient: reject handshakes with DH parameters < 768...
2015-05-05 Matt CaswellAdd more error state transitions (client)
2015-04-21 Emilia KasperRepair EAP-FAST session resumption
2015-04-16 Viktor DukhovniCode style: space after 'if'
2015-03-25 Matt CaswellFix RAND_(pseudo_)?_bytes returns
2015-01-22 Matt CaswellRe-align some comments after running the reformat script. OpenSSL_1_0_1-post-reformat
2015-01-22 Matt CaswellRun util/openssl-format-source -v -c .
2015-01-22 Matt CaswellFix source where indent will not be able to cope
2015-01-22 Tim Hudsonmark all block comments that need format preserving...
2015-01-07 Dr. Stephen Hensonfix error discrepancy
2015-01-06 Dr. Stephen HensonOnly allow ephemeral RSA keys in export ciphersuites.
2015-01-05 Dr. Stephen HensonECDH downgrade bug fix.
2014-12-17 Richard LevitteClear warnings/errors within KSSL_DEBUG code sections
2014-12-15 Matt CaswellCheck return value of ssl3_output_cert_chain
2014-11-20 Emilia KasperEnsure SSL3_FLAGS_CCS_OK (or d1->change_cipher_spec_ok...
2014-11-20 Emilia KasperAlways require an advertised NewSessionTicket message.
2014-11-20 Emilia KasperRemove ssl3_check_finished.
2014-11-20 Emilia KasperSet s->hit when resuming from external pre-shared secret.
2014-11-20 Emilia KasperReset s->tlsext_ticket_expected in ssl_scan_serverhello...
2014-11-19 Dr. Stephen HensonNew option no-ssl3-method which removes SSLv3_*method
2014-10-28 Emilia KasperTighten session ticket handling
2014-09-21 Tim HudsonFixed error introduced in commit f2be92b94dad3c6cbdf79d...
2014-09-05 Adam Langleypsk_client_callback, 128-byte id bug.
2014-08-15 Matt CaswellFixed out-of-bounds read errors in ssl3_get_key_exchange.
2014-08-08 Dr. Stephen HensonFix SRP authentication ciphersuites.
2014-08-06 Dr. Stephen HensonCheck SRP parameters early.
2014-08-06 Dr. Stephen HensonFix SRP ciphersuite DoS vulnerability.
2014-08-06 Emilia KäsperFix DTLS anonymous EC(DH) denial of service
2014-06-14 Dr. Stephen HensonAccept CCS after sending finished.
2014-06-07 Dr. Stephen HensonMake tls_session_secret_cb work with CVE-2014-0224...
2014-06-05 Dr. Stephen HensonFix CVE-2014-3470
2014-06-05 Dr. Stephen HensonFix for CVE-2014-0224
2013-10-19 Ben LaurieMerge branch 'no_gmt_unix_time' of git://github.com...
2013-10-09 Nick MathewsonRefactor {client,server}_random to call an intermediate...
2013-09-16 Nick MathewsonDo not include a timestamp in the ClientHello Random...
2013-02-09 Andy Polyakovssl/s3_[clnt|srvr].c: fix warnings.
2012-06-08 Ben LaurieReduce version skew.
2012-04-17 Dr. Stephen HensonAdditional workaround for PR#2771
2012-02-09 Dr. Stephen HensonModify client hello version when renegotiating to enhan...
2011-12-31 Dr. Stephen HensonPR: 2658
2011-12-26 Dr. Stephen HensonPR: 2326
2011-11-25 Dr. Stephen HensonPR: 1794
2011-11-24 Ben LaurieDon't send NPN during renegotiation.
2011-11-13 Ben LaurieAdd Next Protocol Negotiation.
2011-09-05 Bodo MöllerFix session handling.
2011-07-25 Dr. Stephen HensonAdd HMAC ECC ciphersuites from RFC5289. Include SHA384...
2011-06-08 Dr. Stephen Hensonfix memory leak
2011-05-25 Dr. Stephen Hensonuse TLS1_get_version macro to check version so TLS...
2011-05-19 Dr. Stephen Hensonadd FIPS support to ssl: doesn't do anything on this...
2011-05-12 Dr. Stephen HensonProvisional support for TLS v1.2 client authentication...
2011-05-12 Dr. Stephen HensonProcess signature algorithms during TLS v1.2 client...
2011-05-11 Dr. Stephen HensonBackport TLS v1.2 support from HEAD.
2011-03-16 Dr. Stephen HensonFix SRP error codes (from HEAD).
2011-03-16 Ben LaurieAdd SRP.
2011-02-03 Bodo MöllerCVE-2010-4180 fix (from OpenSSL_1_0_0-stable)
2010-10-10 Dr. Stephen HensonPR: 2314
2010-08-27 Dr. Stephen Hensonoops, revert previous patch
2010-08-27 Dr. Stephen HensonPR: 1833
2010-08-26 Dr. Stephen HensonPR: 1833
2010-06-16 cvs2svnThis commit was manufactured by cvs2svn to create branch
2010-02-28 Dr. Stephen Hensonalgorithms field has changed in 1.0.0 and later: update
2010-02-27 Dr. Stephen HensonAdd Kerberos fix which was in 0.9.8-stable but never...
2010-02-02 Dr. Stephen HensonPR: 2161
2010-01-26 Dr. Stephen HensonPR: 1949
2010-01-05 Dr. Stephen Hensoncompress_meth should be unsigned
2010-01-01 Dr. Stephen HensonClient side compression algorithm sanity checks: ensure...
2009-12-08 Dr. Stephen HensonAdd support for magic cipher suite value (MCSV). Make...
2009-12-08 Dr. Stephen HensonPR: 2121
2009-12-01 Dr. Stephen HensonPR: 2115
2009-10-30 Dr. Stephen HensonGenerate stateless session ID just after the ticket...
2009-10-28 Dr. Stephen HensonDon't attempt session resumption if no ticket is presen...
2009-09-13 Dr. Stephen HensonSubmitted by: Julia Lawall <julia@diku.dk>
2009-06-16 Dr. Stephen HensonUpdates from HEAD.
2009-04-21 Dr. Stephen HensonSome fixes for kerberos builds.
2009-04-19 Dr. Stephen HensonPR: 1751
2009-03-31 cvs2svnThis commit was manufactured by cvs2svn to create branch
2009-02-14 Dr. Stephen HensonPR: 1835
2009-01-07 Dr. Stephen HensonUpdatde from stable branch.
2008-12-27 Ben LaurieHandle the unlikely event that BIO_get_mem_data() retur...
2008-11-15 Dr. Stephen HensonPR: 1574
2008-11-12 Geoff ThorpeRevert the size_t modifications from HEAD that had...
2008-11-10 Dr. Stephen HensonMake -DKSSL_DEBUG work again.
2008-10-12 Ben LaurieType-checked (and modern C compliant) OBJ_bsearch.
2008-06-01 Dr. Stephen HensonAllow ENGINE client cert callback to specify a set...
2008-06-01 Dr. Stephen HensonAdd client cert engine to SSL routines.
2008-05-28 Bodo MöllerFrom HEAD:
2008-04-29 Dr. Stephen HensonUpdate from stable branch.
2008-01-05 Andy PolyakovFix unsigned/signed warnings in ssl.
2007-12-14 Dr. Stephen HensonInitialize sigsize.
2007-11-03 Dr. Stephen HensonFix from stable branch.
2007-10-26 Dr. Stephen Henson1. Changes for s_client.c to make it return non-zero...
2007-10-14 Andy PolyakovMake ssl compile [from 098-stable, bug is masked by...
2007-09-26 Dr. Stephen HensonSupport for certificate status TLS extension.
2007-09-21 Bodo MöllerImplement the Opaque PRF Input TLS extension
2007-08-31 Dr. Stephen HensonUpdate ssl code to support digests other than MD5+SHA1...
next